Job Description
                    
Come work at a place where we take pride in creating a workplace environment that values hard work, commitment, and growth.
The IT General Controls (ITGC) Analyst plays a critical role in ensuring that IT systems and processes within the organization comply with internal policies, Sarbanes-Oxley (SOX) requirements, and industry standards. This position will focus on monitoring, testing, and validating IT controls to support compliance, reduce risk, and protect the integrity of financial reporting. The analyst will collaborate with IT, compliance, audit, and business teams to strengthen control environments and ensure readiness for both internal and external audits.
Job Description:
Education:
• Bachelor’s degree in information systems, computer science, accounting, finance, or a related field.
• Master’s degree in Cybersecurity, IT Management, or related discipline preferred.
• Professional certifications preferred (e.g., CISA, CIA, or similar).
Work Experiences:
• 3+ years of experience in IT audit, IT risk, IT security, or compliance within a corporate environment.
• Experience with SOX compliance testing and ITGC frameworks strongly preferred.
• Prior exposure to retail or consumer-facing industries is a plus.
• Experience working with audit firms (internal or external) is highly desirable.
Skills:
• Strong knowledge of ITGC frameworks, including SOX, NIST CSF, and COBIT.
• Understanding of IT processes such as change management, access management, backup/recovery, and IT operations.
• Proficiency with GRC (Governance, Risk, and Compliance) tools and IT ticketing systems.
• Strong analytical, documentation, and problem-solving skills.
• Excellent written and verbal communication, with the ability to communicate effectively with both technical and non-technical stakeholders.
• Strong organizational skills with the ability to prioritize and manage multiple tasks simultaneously.
Responsibilities:
• Perform periodic testing and validation of ITGCs to ensure compliance with SOX and other regulatory requirements.
• Document test results, remediation efforts, and compliance evidence for internal and external audit.
• Support IT and business teams in addressing control deficiencies and implementing corrective actions.
• Partner with IT Security, IT Compliance, and Internal Audit teams to maintain alignment across risk and control activities.
• Maintain up-to-date knowledge of compliance requirements, including SOX, PCI-DSS, and data privacy regulations.
• Monitor and support segregation of duties (SoD) and least privilege access reviews across critical systems.
• Assist in developing policies, procedures, and standards related to IT controls and compliance.
• Support continuous improvement by recommending enhancements to control design and monitoring processes.
Physical Requirements & Attendance
• Acceptable level of hearing and vision to perform job duties
• Adhere to company work hours, policies, procedures, and rules governing professional staff behavior
• May require extended hours during security incidents, audits, or critical project phases.
• Regular office attendance is required.
Full time
Equal Employment Opportunity
Academy is an Equal Opportunity Employer and does not discriminate with regard to employment opportunities or practices on the basis of race, religion, national origin, sex, age, disability, gender identity, sexual orientation, or any other category protected by law.